浏览 49+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-5797 | Quiz and Survey Master (QSM) <= 11.1.0 - Unauthenticated Shortcode Injection Leading to Arbitrary Quiz Result Disclosure via Quiz Answer Text Input Fields | expresstech | Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker | Medium | 5.3 | 2026-04-17 05:29:27 | Deep Dive |
| CVE-2026-2412 | Quiz and Survey Master (QSM) <= 10.3.5 - Authenticated (Contributor+) SQL Injection via 'merged_question' Parameter | expresstech | Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker | Medium | 6.5 | 2026-03-23 22:25:40 | Deep Dive |
| CVE-2025-67987 | WordPress Quiz And Survey Master plugin <= 10.3.1 - SQL Injection vulnerability | ExpressTech Systems | Quiz And Survey Master | - | - | 2026-02-20 15:46:32 | Deep Dive |
| CVE-2026-25329 | WordPress Quiz And Survey Master plugin <= 10.3.4 - Broken Access Control vulnerability | ExpressTech Systems | Quiz And Survey Master | - | - | 2026-02-19 08:26:57 | Deep Dive |
| CVE-2026-25324 | WordPress Quiz And Survey Master plugin <= 10.3.4 - Insecure Direct Object References (IDOR) vulnerability | ExpressTech Systems | Quiz And Survey Master | - | - | 2026-02-19 08:26:56 | Deep Dive |
| CVE-2026-24358 | WordPress Quiz And Survey Master plugin <= 10.3.3 - Broken Access Control vulnerability | ExpressTech Systems | Quiz And Survey Master | Medium | 4.3 | 2026-01-22 16:52:44 | Deep Dive |
| CVE-2025-9637 | Quiz and Survey Master (QSM) <= 10.3.1 - Missing Authorization to Unpublished, Private And Password-Protected Quiz Information Disclosure And Image Response Uploads | expresstech | Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker | Medium | 6.5 | 2026-01-06 09:20:59 | Deep Dive |
| CVE-2025-9318 | Quiz and Survey Master (QSM) <= 10.3.1 - Authenticated (Subscriber+) SQL Injection via `is_linking` Query Parameter | expresstech | Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker | Medium | 6.5 | 2026-01-06 09:20:59 | Deep Dive |
| CVE-2025-9294 | Quiz And Survey Master <= 10.3.1 - Missing Authorization to Authenticated (Subscriber+) Quiz Results Deletion | expresstech | Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker | Medium | 4.3 | 2026-01-06 08:21:49 | Deep Dive |
| CVE-2025-63054 | WordPress Quiz And Survey Master plugin <= 10.3.2 - Broken Access Control vulnerability | ExpressTech Systems | Quiz And Survey Master | Medium | 5.3 | 2025-12-09 14:52:32 | Deep Dive |
| CVE-2025-55708 | WordPress Quiz And Survey Master Plugin <= 10.2.4 - SQL Injection Vulnerability | ExpressTech Systems | Quiz And Survey Master | High | 8.5 | 2025-08-14 18:21:35 | Deep Dive |
| CVE-2025-6790 | QSM < 10.2.3 - Template Creation via CSRF | Unknown | Quiz and Survey Master (QSM) | - | - | 2025-08-14 06:00:05 | Deep Dive |
| CVE-2024-10679 | Quiz and Survey Master (QSM) < 9.2.1 - Author+ Stored XSS | Unknown | Quiz and Survey Master (QSM) | 中危 | - | 2025-03-25 06:00:09 | Deep Dive |
| CVE-2023-37984 | WordPress Quiz And Survey Master plugin <= 8.1.10 - Broken Access Control vulnerability | ExpressTech Systems | Quiz And Survey Master | Medium | 4.3 | 2024-12-13 14:23:52 | Deep Dive |
| CVE-2024-8758 | Quiz and Survey Master (QSM) < 9.1.3 - Author+ Stored XSS | Unknown | Quiz and Survey Master (QSM) | - | - | 2024-09-23 06:00:05 | Deep Dive |
| CVE-2024-6879 | Quiz and Survey Master (QSM) < 9.1.1 - Contributor+ Stored XSS | Unknown | Quiz and Survey Master (QSM) | - | - | 2024-08-26 06:00:01 | Deep Dive |
| CVE-2024-6390 | Quiz and Survey Master (QSM) < 9.1.0 - Contributor+ Stored XSS | Unknown | Quiz and Survey Master (QSM) | - | - | 2024-08-03 06:00:05 | Deep Dive |
| CVE-2024-6025 | Quiz and Survey Master < 9.0.5 - Contributor+ Stored XSS | Unknown | Quiz and Survey Master (QSM) | - | - | 2024-07-11 06:00:04 | Deep Dive |
| CVE-2024-5606 | Quiz And Survey Master < 9.0.2 - Contributor+ SQLi | Unknown | Quiz and Survey Master (QSM) | - | - | 2024-07-02 06:00:03 | Deep Dive |
| CVE-2024-4934 | Quiz And Survey Master < 9.0.2 - Contributor+ Stored XSS | Unknown | Quiz and Survey Master (QSM) | - | - | 2024-07-01 06:00:01 | Deep Dive |